dr34mhacks / XSSNowLinks
Find XSS payloads that actually work by filtering them based on real-world constraints instead of blind payload spraying.
☆75Updated this week
Alternatives and similar repositories for XSSNow
Users that are interested in XSSNow are comparing it to the libraries listed below
Sorting:
- GarudRecon automates domain recon with top open-source tools to discover assets, enumerate subdomains, and detect XSS, SQLi, LFI, RCE & m…☆192Updated 3 weeks ago
- IDOR Forge is an advanced and versatile tool designed to detect Insecure Direct Object Reference (IDOR) vulnerabilities in web applicatio…☆213Updated 3 months ago
- ☆78Updated 7 months ago
- Helios: Automated XSS Testing☆159Updated last year
- Bypass-Four03 is a powerful bash tool designed to help testers bypass HTTP 403 forbidden errors through various path and header manipulat…☆164Updated 7 months ago
- ☆124Updated 4 months ago
- Subdomain Enumerator and Simple Crawler☆296Updated last week
- Frogy 2.0 is an automated external reconnaissance and Attack Surface Management (ASM) toolkit☆318Updated 2 months ago
- A Powerful Recon Engine☆68Updated last year
- ☆162Updated this week
- A passive way to find backups/ sensitive information.☆88Updated 5 months ago
- ☆95Updated 9 months ago
- Scripts, files, cheatsheets and more used for pentesting and my OSWE / AWAE exam.☆97Updated 4 months ago
- SubOwner - A Simple tool check for subdomain takeovers.☆119Updated last year
- Advanced CORS Header Checker Tool with Vulnerability Detection and Bypass Attempts☆65Updated 6 months ago
- ☆89Updated 3 months ago
- Parse FFUF results in GUI with option to sort based by response code , size , keyword☆99Updated last year
- ☆204Updated 10 months ago
- ⚡ XSSuccessor is a powerful, asynchronous Cross-Site Scripting (XSS) detection tool.☆56Updated 11 months ago
- A Bash script for automated nuclei dast scanning by using passive urls☆121Updated 9 months ago
- ☆161Updated 9 months ago
- A simple browser extension to quickly find interesting security-related information on a webpage.☆154Updated last month
- SpideyX a multipurpose Web Penetration Testing tool with asynchronous concurrent performance with multiple mode and configurations.☆187Updated 9 months ago
- List of Directory Traversal/LFI Payloads Scraped from the Internet☆180Updated 10 months ago
- Subprober is a powerful and efficient subdomain scanning tool written in Python. With the ability to handle large lists of subdomains. Th…☆263Updated 5 months ago
- Backup Files Wordlist Generator - generate a comprehensive list of potential backup file Wordlist based on a given list URL and backup fi…☆88Updated 6 months ago
- ☆102Updated 9 months ago
- ☆81Updated 6 months ago
- ☆175Updated last year
- A fast, minimalistic scanner for time-based SQL injection (SQLi) detection – built in Go.☆135Updated 7 months ago